🗣 Rob Rosenberger Profile picture
Jul 15 18 tweets 6 min read Twitter logo Read on Twitter
1/18
Monday would be #NickoSilar's birthday. Our industry spouts an #UrbanLegend that she died in a hospital #ransomware attack … yet the truth is a bit complicated for our collective reductionist beliefs.

Let's study the facts surrounding this baby's tragic death, shall we? https://t.co/TVbwbQ7wTJ
Image
2/18
First, I need to caveat my role in this sad affair. I've offered my expertise pro bono to the law firm representing the attending physician who delivered #NickoSilar on that fateful day. My specific goal is to protect Dr. Parnell from Springhill Medical Center's legal team.
3/18
I must admit it proved no easy task to pick Dr. Parnell over Nicko Silar's mother who, in truth, needs no expertise I can offer.

Maybe help Springhill Medical Center's CISO?

Nope: SMC has already thrown Dr. Parnell under the bus to protect themselves & their CISO.
4/18
Let's begin by exploring the #UrbanLegend our industry propagates. It comes up in discussions about hospital #ransomware murders when someone (on Twitter it's usually me) asks for an obituary.

Except #NickoSilar isn't the first to be identified. It's a *different*…
5/18
…#UrbanLegend about a woman in Germany who died in a hospital #ransomware attack.

Of course I'm fully prepared to dispel that urban legend as you can see in the example reply below. Then, and only then, does the debate shift to #NickoSilar.
6/18
Of course I'm fully prepared to dispel that #UrbanLegend, too, as you can see in the example reply below.

At this point various debaters will delete their own tweets and the conversation ends (as you can see in my example replies):
7/18
Okay, so we know the #UrbanLegend surrounding #NickoSilar's "death by #ransomware." It's time for facts.

Here's the TL;DR:

Wall Street Journal investigative reporter Kevin Poulsen et al. picked up the story 1½ years AFTER the baby died.
web.archive.org/web/2021100100…
8/18
That's it. That's the only fact you need to know.

Nobody in cybersecurity knew of this baby's birth for 2¼ years, nor of her death for 1½ years. We learned about it *only* because the wheels of justice finally moved along barely enough for us to detect it.
9/18
That's all you need to know for now, because that's all Kevin Poulsen has written on Twitter. He hasn't used both "hospital" and "ransomware" in a tweet since his #NickoSilar story dated 30 September 2021. Nor has he tweeted about Nicko Silar since.
10/18
I agree with anyone who feels the cybersecurity community has "matured" since the #antivirus industry coalesced in 1988.

Yet it's true that our community still adores a good #UrbanLegend. To this day we don't need facts to claim deaths!
11/18
You'll find any number of experts I AGREE WITH who believe hospital deaths increased by some value since the 2017 NHS #ransomware attack. In the words of @JoshCorman: "a cyberattack can strain you enough to contribute to excess deaths."
12/18
I agree with experts who believe #ransomware stresses doctors & nurses. I've not contested the CISA statistical analysis Josh Corman cites.

AND

I believe stress from COVID politics had a bigger impact on hospital staff than #ransomware.
13/18
(You'll notice Corman used the word "strain," not "stress." It hints at perhaps a greater #ransomware problem in U.S. hospitals than we know. If this is true, it may be simply be the *hospital* industry is statistically blind to the true scope of their problem.) 😬
14/18
Let's face reality: if a pregnant woman rolls into a Texas ER for an emergency abortion, the staff won't pause to fret "what if #ransomware strikes as we struggle to decide who lives and who dies?" They'll feel a different, more "supreme" stress.
15/18
(Actually, the staff may overlook an old woman who comes in griping how Alka Seltzer didn't quench her heartburn. She drops dead while the staff focuses on the pregnant woman. But hey, at least the old lady didn't die from a #ransomware attack!)
nytimes.com/2022/05/09/wel…
16/18
Let's recap: no one in cybersecurity knew about #NickoSilar until 1½ years after her death certificate was filed and she was buried. The coroner didn't identify her cause of death as #ransomware nor a #cyber attack nor anything of that nature.
17/18
Monday will be #NickoSilar's birthday. Yet across all of Twitter last year, only I cherished her memory. That … is a sad fact.

Especially given all the belated hoopla our cybersecurity community delivered in the form of an #UrbanLegend.

PS: 🤨
18/18
I'll close this thread on a salient quote from @JoshCorman: "Lots of prior exaggeration and crying wolf about the wrong things exhausted people for when clear and critical thinking is required."

Truer words were never spoken, Josh.

@ThreadReaderApp please unroll

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with 🗣 Rob Rosenberger

🗣 Rob Rosenberger Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @vmyths

Jul 11
No jokes, no satire, no sarcasm.

Listen to me carefully.

I WANT TO BE PROVEN WRONG for my #skepticism in cybersecurity.

I want Victor Zhora to quit telling me to visit Ukraine to learn how many people died in a Russian quasi-military cyber attack. I want him to give a number.
I want Tarah to give us an authoritative number on how many patients were murdered in the 2017 NHS #ransomware attack:
I want our global industry to REMEMBER #NickoSilar six days from now on what would have, should have, been her birthday:
Read 21 tweets
Jun 20
1/🧵
Two years ago on June 14th, Steve Morgan's astronomically large yet unexplained #guesstimate for "the cost of cybercrime" exceeded the U.S. national debt.

This week the national debt officially topped $32 trillion, and the World Bank revised its global GDP projections…
2/🧵
…so let's revisit the #absurdity of Steve Morgan's ✌️predictions✌️ for "the cost of cybercrime."

We'll incorporate the latest numbers from the U.S. gov't debt website and the World Bank's global GDP projections.

Strap in. This absurdity is HUGE.
3/🧵
As I've said before, it amazes me how often Steve Morgan's absurdities #dupe cyber experts like @dralissajay, @WaleMicaiah, @LHMphaphuli, @KenBeattyJr, @eSentire, @LilyLopate, etc. Their gullibility is part and parcel of cybersecurity's "infotainment sub-industry."
Read 9 tweets
Jun 16
1/🧵
So, I'm quietly asked my opinion of @mikko's somewhat ... grandiose claims for artificial general intelligence (AGI) going forward. I invite my questioner to jump in with their own thoughts, but here's mine as cybersecurity's eldest #critic:
2/🧵
My short answer is "I'm okay with anyone making bold claims like this." There's simply no #fearmongering here. @mikko states the obvious and paints a future.

My longer answer centers on the fact @mikko wields a strong character in our industry...
3/🧵/🧵
...and it's the type of character I would wish on everyone.

I admit @mikko has a style few can muster. But his character? Every one of us can muster that if we wish!

Imagine a world where we all invite software makers to see their work from...
twitter.com/i/events/93951…
Read 11 tweets
May 8
He's subtweeting me for all the right reasons -- and phone calls I've been on reveal he's not the only one.

I've gone soft on @CISAgov in appreciation for the fact they're not like their direct descendant, FBI NIPC.

I've gone soft on @CISAJen because she's not like her…
…predecessor, Michael Vatis.

More specifically, though, I've gone soft on @CISAJen because she's building the right relationships with @DragosInc and @RobertMLee, who himself will play the role of "Daddy Warbucks" in the first true #cyberwar.

Everything @ErrataRob subtweeted…
…is correct. When I say "it's getting better," that doesn't mean it's *good* now.

CISA severely lacks #critics, skeptics, and historians. Their board-level guidance comes from people who, among other things, wrote the book "This Is How They Tell Me The World Ends"…
Read 7 tweets
Mar 3
I agree 💯 with @mikko here.

BUT--

--he might be missing the Pentagon's perspective. So, let me fill y'all in.

Tanks, missiles, etc. are #classic: they deploy everywhere to strike anything. Need to put a hole in something? Tank. Obliterate? Missile. Crater? Bomb…
…but a cyber weapon is #unique as @mikko said. It deploys against a particular version(s) of Windows, or Linux, or even #antivirus software.

At this point you'd be totally correct to say "Rob, you can't drop a 30lb incendiary bomb to take out an underground bunker!" But the… Image
…issue here is "classic."

In WWII, we dropped 30lb incendiary bombs across Germany to demoralize and kill their civilian populations.

Now, in #cyber, you can issue an update, change a setting, even retreat from the Internet. In the real world, though…
ImageImage
Read 5 tweets
Mar 3
🧵
"#Antivirus software is a future Trojan horse."

There. I said it.

"But Rob! You were defending Kaspersky just a few days ago!"

NO.

I've fought a crude #UrbanLegend in our industry that's simmered since the FBI threw a shit-fit over something they've never proven.
Worse, our own global community has never proved it -- and we've got every good reason to prove it if true.

But hey, our industry turned the tables on Kaspersky the day his dictator launched a genocide campaign.

Because we're just like that. We've always been like that.
That's why our industry's #ThoughtLeaders can dance on a pinhead: because IT'S EASY!

The logic in the back of their minds is simple: "Kaspersky is a Russian billionaire who craves genocide in Ukraine and does anything Putin asks. I must destroy Kaspersky with all my willpower."
Read 10 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Don't want to be a Premium member but still want to support us?

Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal

Or Donate anonymously using crypto!

Ethereum

0xfe58350B80634f60Fa6Dc149a72b4DFbc17D341E copy

Bitcoin

3ATGMxNzCUFzxpMCHL5sWSt4DVtS8UqXpi copy

Thank you for your support!

Follow Us on Twitter!

:(